v2026.04
Read release notes
exAI Agentic OSexAI
§ 01
ChangelogPublic release logContinuous releases · tagged milestones every ~30 days.
v2026.04 · live in production
exAI Agentic OS · the release ledger

What shipped.

Releases are continuous. Version tags mark public-facing milestones; subscribers get an RSS feed.

Patches and inline rollouts ship on their own cadence — landing in production the moment the gates close green. The entries below cover the public surface area: Composer, Orchestrator, Workspace, Security, and the API.

release · ledger
tag · v2026.04
Latest · Apr 12, 2026

Composer GA + Firecracker regional failover.

composerGA · router DSL stable
orchestratorregional failover · 90s
securitySCIM custom attrs
auditx-correlation-id
Last release
v2026.04 · 27 days ago
Average cadence
1 release / month
Patch releases
in-line, unnumbered
Fig. 01 · the ledgergit tag · annotated
§ Filter
Filter · by surfacevisual · current view All
AllComposerOrchestratorWorkspaceSecurityAPI
§ 02
Release ledger

The last eight
tagged releases.

Newest first. Each entry is the public surface of a tagged release; in-line patches and unnumbered fixes ship between them and are not enumerated here. Older releases live in the archive.

01
v2026.04

Composer GA + Firecracker regional failover

Composer leaves beta with the multi-model router policy DSL stable, plan-diff-apply gains mid-stream cancellation, and the Firecracker pool now fails over across regions inside a 90-second window.

Composer04 · changes
  • ·GA (was beta).
  • ·Multi-model router policy DSL.
  • ·Per-tenant model allow-list.
  • ·Plan-diff-apply lands cancellation-mid-stream.
Orchestrator02 · changes
  • ·Regional failover for Firecracker pools.
  • ·Run resumes within 90s after a region drain.
Security02 · changes
  • ·SCIM 2.0 custom attributes (per-IdP mapping).
  • ·Audit log gains x-correlation-id propagation.
tag · v2026.04release notes · permalink#v2026.04
02
v2026.03

KMS rotation automation + Splunk integration

Per-workspace data-encryption keys now follow a 90-day rotation by default, the audit log streams natively to Splunk HEC, and boot-time secrets are delivered through a sealed-secrets envelope.

Security02 · changes
  • ·Automatic KMS rotation on a 90-day default.
  • ·Per-workspace DEK lifecycle.
Operations02 · changes
  • ·Audit log Splunk HEC export.
  • ·Datadog log-shipping uses service:exai by default.
Workspace01 · change
  • ·Boot-time secrets injection now uses sealed-secrets-style envelope.
tag · v2026.03release notes · permalink#v2026.03
03
v2026.02

Templates marketplace v2 — 50 new templates

The templates marketplace doubles in size with 50 community-curated stacks, the Builder scaffolds Stripe end-to-end, and the Composer adds a reviewer-only mode that ships plans without applying them.

Templates02 · changes
  • ·50 new community-curated templates.
  • ·Search-by-stack and filter-by-license.
Builder01 · change
  • ·Stripe checkout, customer portal, and webhook lifecycle now first-class in scaffolding.
Composer01 · change
  • ·Reviewer-mode added (no auto-apply, plan-only).
tag · v2026.02release notes · permalink#v2026.02
04
v2026.01

Orchestrator GA · 30-hour run cap

Orchestrator hits GA. The wall-clock cap moves from 12 to 30 hours, snapshot cadence is configurable per node, and the v1 surface stabilises around runs and checkpoints with a published v0 deprecation path.

Orchestrator03 · changes
  • ·GA.
  • ·Wall-clock cap raised to 30 hours.
  • ·Snapshot cadence configurable per node.
Agents02 · changes
  • ·TestRunner shard count auto-tunes off CI fingerprint.
  • ·RegressionHunter ships.
API02 · changes
  • ·/v1/runs and /v1/checkpoints endpoints stable.
  • ·v0 deprecation path published.
tag · v2026.01release notes · permalink#v2026.01
05
v2025.12

Multi-model router policy DSL

A small declarative DSL replaces hardcoded routing rules — latency-optimised, cost-ceilinged, or provider-pinned profiles compose per request. Llama-4-405b lands on-prem via Triton.

Composer01 · change
  • ·New router policy DSL — latency-optimized, cost-ceiling, provider-pinned, mixable per request.
Models01 · change
  • ·Added llama-4-405b on-prem via NVIDIA Triton.
Workspace01 · change
  • ·Live Share now multiplexes voice over WebRTC.
tag · v2025.12release notes · permalink#v2025.12
06
v2025.11

SAML SP-initiated SSO

Full SAML 2.0 — both SP- and IdP-initiated — verified against the three IdPs that cover most enterprise traffic. Org-scoped API keys gain per-key TTLs, and failed VM boots show actionable diagnostics.

Security02 · changes
  • ·SAML 2.0 SP-initiated and IdP-initiated.
  • ·Tested against Okta, Entra ID, Google Workspace.
API01 · change
  • ·Org-scoped API keys with per-key TTL.
Workspace01 · change
  • ·Custom error pages for failed VM boot now show vm-id and region.
tag · v2025.11release notes · permalink#v2025.11
07
v2025.10

Tenant-managed KMS · 4 regions

Customer-managed encryption is now a first-class deployment mode across the four major cloud KMS providers. The Helm chart splits control plane and data plane, and Composer scrubs secrets before any tool call.

Security01 · change
  • ·AWS KMS, GCP KMS, Azure Key Vault Managed HSM, CloudHSM all supported.
Operations01 · change
  • ·Self-hosted Helm chart 2.0 — separate values for control plane and data plane.
Composer01 · change
  • ·Secret scrubbing now runs pre-prompt and pre-tool-call.
tag · v2025.10release notes · permalink#v2025.10
08
v2025.09

Live Share v1

Multiplayer pairing lands as a v1 surface — Y.js-backed cursors, shared terminals, and follow-mode. Composer streams via SSE with mid-stream cancellation. The first human-in-the-loop gates ship.

Workspace01 · change
  • ·Live Share — Y.js-backed multiplayer cursors, shared terminals, follow-mode.
Composer01 · change
  • ·Streaming SSE with mid-stream cancellation.
Orchestrator01 · change
  • ·HITL gates land — Slack ping, email, in-product modal.
tag · v2025.09release notes · permalink#v2025.09
§ 03
Archive

Older releases · git log archived back to v2024.06.

Eighteen months of tagged history — every release note, every policy DSL revision, every breaking-API window — kept verbatim against the annotated tags. Nothing rewritten, nothing folded into a marketing summary.

archive · contents
  • 2025tagged ledger
    12 tagged · 47 in-line
  • 2024tagged ledger
    9 tagged · 31 in-line
git log · v2024.06 → HEADread-only
Fig. 02 · archiveannotated · signed tags